FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9 allow remote attackers to cause a denial of service (kernel crash) via vectors related to creating a TCP connection with the TCP_MD5SIG and TCP_NOOPT socket options.
Weaknesses in this category are typically found in functionality that processes data. Data processing is the manipulation of input to retrieve or save information.
Link | Tags |
---|---|
http://www.securitytracker.com/id/1034677 | vdb entry |
https://security.FreeBSD.org/advisories/FreeBSD-SA-16:05.tcp.asc | patch vendor advisory |